Commit graph

158 commits

Author SHA1 Message Date
Matteo Biscosi
2336ea1762 Added aliases REST API (#8053) 2023-11-29 11:02:04 +00:00
Matteo Biscosi
7f26e855b6 Fixes misstype error 2023-11-27 10:27:35 +00:00
Luca Deri
bb61ac57ad SQL fixes 2023-11-27 10:56:15 +01:00
Nicolo Maio
7dc3ec89ec [VS] Rename INFO and REPORT_INFO columns into JSON_INFO and REPORT_JSON_INFO. 2023-11-20 17:55:02 +01:00
Nicolo Maio
34f7a42308 [VS] Add historical reports. (#8015) (#7950) 2023-11-20 17:06:23 +01:00
Matteo Biscosi
66fd9b5d37 Removed ts_multi initial_point param no more used 2023-11-02 16:09:41 +00:00
Matteo Biscosi
c631713696 Fixes major problems in VS page 2023-10-31 12:16:57 +00:00
Luca Deri
40b9fcdadf Duplicate 2023-10-17 23:02:44 +02:00
Matteo Biscosi
6f55920aa1 Ordered rest api and finalized rest api refactoring 2023-10-13 15:00:00 +00:00
Nicolo Maio
69c33033e2 Add API REST doc for aggregated_live_flows and vs_result. 2023-10-13 14:28:44 +02:00
Matteo Biscosi
20972d3a18 First rest documentation update 2023-10-13 11:57:46 +00:00
Luca Deri
d05e98ba65 Added Ellio blocklist configuration (disabled by default) 2023-09-11 16:37:18 +02:00
Alfredo Cardigliano
98504cc1b4 Add SRC_LABEL/DST_LABEL to hourly flows 2023-08-23 10:12:27 +02:00
Luca Deri
6e4fd07312 Fidabled feodo blacklist due to the results presented in http://luca.ntop.org/Blacklists.pdf 2023-08-14 18:45:10 +02:00
Nicolo Maio
c1bd2186c5 Fix show vs result and various bug fix on modal. (#7625) 2023-08-03 11:33:39 +00:00
Luca
99c4d4d4da Enabled StratospereIPS by default 2023-07-19 15:14:30 +02:00
Alfredo Cardigliano
a992a000dd Format json 2023-07-18 10:29:22 +02:00
Alfredo Cardigliano
295f50bf82 Add doc for pro/rest/v2/get/flowdevices/stats.lua 2023-07-18 10:25:20 +02:00
Alfredo Cardigliano
2e31851f43 Fix all_alerts_view definition 2023-06-22 09:44:21 +02:00
Alfredo Cardigliano
bb10dceb0e Add alert_category column (sqlite) 2023-06-20 17:32:02 +02:00
Alfredo Cardigliano
246e5a5142 Add alert_category column 2023-06-20 17:25:54 +02:00
Luca Deri
2d90099c1e Modified SNMP alerts table 2023-06-07 16:13:56 +02:00
Luca Deri
4c66ddebbf Reworked clickhouse aggregated flows table 2023-06-05 12:21:05 +02:00
Luca Deri
ba67864295 Reworked packaging 2023-05-24 23:19:01 +02:00
Luca Deri
709fc8155c Initial implementation of swagger 2023-05-24 17:42:08 +02:00
Luca Deri
2b5027e136 Updated table name 2023-05-19 16:37:13 +02:00
Luca Deri
dba12047e3 Added creation of clickhouse aggregated flows table 2023-05-19 16:17:09 +02:00
Alfredo Cardigliano
59c4ca4d4e Add install_disk2disk_conf 2023-04-11 17:39:35 +02:00
Matteo Biscosi
f6ce278e9e Added Historical Flow fields when downloading (#6851) 2023-03-31 10:48:54 +00:00
Luca Deri
a7aa8bcbc0 Updated schema with parametric cluster name 2023-01-19 08:50:22 +01:00
Luca Deri
a1b9c31e6d Updated tables defnition for cluster 2023-01-17 13:31:34 +01:00
Luca Deri
6ac2fc7623 Changed table definition 2023-01-14 14:37:46 +01:00
Luca Deri
662bfd2313 Changes for supporting clickhouse-cluster 2023-01-13 22:28:31 +01:00
Alfredo Cardigliano
e4404a291b Fix view drop 2023-01-09 12:44:27 +01:00
Alfredo Cardigliano
039b842ce5 Fix where condition in all_alerts_view 2022-12-27 19:41:32 +01:00
Luca Deri
c744b96473 Disabled stratosphere labs blacklist as it contains too many false positives 2022-12-01 10:27:44 +01:00
Alfredo Cardigliano
4a000a5b69 Improve check for RH based systems 2022-08-26 09:31:25 +02:00
Alfredo Cardigliano
416ca7b7fb Add exporter and interface info to flow alerts schema (#6808) 2022-08-22 15:43:18 +02:00
Luca Deri
704d4c31fe Fixed typo 2022-08-16 18:00:22 +02:00
Luca Deri
ac90e492a0 Added Stratosphere Labs Blacklist support 2022-08-16 17:56:24 +02:00
Luca Deri
bb822527af Category is now set to malware 2022-08-16 17:55:52 +02:00
Alfredo Cardigliano
61244379ea Rename misleading file name (CH schema also includes flows) 2022-07-21 17:47:02 +02:00
Luca
5e8769b1b5 Reworked builtin lists
- they are now defined in httpdocs/misc/lists in JSON formt
- built-in lists (ntop maintained) are stored in httpdocs/misc/lists/nultin
- custom lists go into httpdocs/misc/lists/custom
2022-07-11 19:18:16 +02:00
MatteoBiscosi
e73e2c9fc6 Added support to ELK version 8 (#6651) 2022-06-28 14:52:04 +02:00
Alfredo Cardigliano
f633292e83 Add cli/srv location to flow alerts 2022-06-09 10:40:33 +02:00
Alfredo Cardigliano
b5934b802d Add dst2src and src2dst packets in flow, required by flow alerts 2022-05-25 18:26:22 +02:00
Alfredo Cardigliano
37d1986933 Check that maintenance is defined and != 0 in automatic package updates 2022-05-23 10:30:48 +02:00
Alfredo Cardigliano
86899d42f7 Fix IPv6 in flow alerts when using clickhouse view 2022-05-11 13:04:53 +02:00
Alfredo Cardigliano
9940cf7b34 Update sqlite schema 2022-05-11 09:50:08 +02:00
Alfredo Cardigliano
addecb93e8 Move info field out of the json for flow alerts 2022-05-11 09:47:52 +02:00